Skip to content
Menu
IT-DRAFTS
  • About
  • My Statistics at Microsoft Q&A
  • Privacy policy
IT-DRAFTS

Tag: Cybersecurity

November 21, 2025November 21, 2025

Sysmon Built Into Windows? ’Bout Time, Microsoft – The SOC Boys Will Be Buzzing

Oy, lads and lasses – big Windows news today. Grab your tea, sit down… this one’s a belter. Microsoft’s finally doing the thing we’ve been begging for since the Bronze Age:Sysmon is going native.Yep. Windows 11 and Windows Server 2025 are getting Sysmon baked right in — no downloads, no MSI faffing, no “did you…

Read More
November 19, 2025

Security Copilot: a bit of magic, a lot of engineering, and 10,000 SCU you’ll burn faster than you can say “phishing”

Alright, lads and lasses — hello again, friends.Today we’re diving straight into the delightful chaos otherwise known as Microsoft Security Copilot being bundled into M365 E5. You may have seen the announcement and thought:“Brilliant, free AI for security! What a lovely day.” Calm down, Shakespeare.This isn’t a fairy tale — it’s enterprise security. And as…

Read More
October 24, 2025

How they hijack Microsoft Teams via tokens (and what to do while everyone sips their coffee)

In short: an attacker does not smash your mailbox to bits, they nick your pass and stroll straight in. It is subtler, neater and a hundred times worse for defenders. If an attacker has a valid token, MFA and passwords become mere decorations. Below is a hard-technical breakdown with a healthy dose of irony. Pass…

Read More
October 22, 2025

Embedded HSMs in the Cloud? Yes, Microsoft Just Went There

TL;DR: Microsoft is moving from centralised HSM clusters to embedded hardware modules built straight into the host silicon. Lower latency, higher throughput, and a new level of “I actually own my keys” confidence. It’s a big shift — for engineers, not marketers. 1. Hook You thought your keys were safe in the cloud? Think again….

Read More
October 15, 2025October 15, 2025

Killing Passwords (Without Killing Productivity): A Practical Guide to Phishing-Resistant Authentication

Passwords are the flip phones of cybersecurity — nostalgic, yes, but utterly obsolete.In a Zero Trust world, passwords are no longer your friend; they’re your weakest link. Microsoft’s password scrambline initiative is not just another shiny idea. It’s a deliberate move towards a world where passwords simply don’t exist.Combine that with enforcing passwordless authentication for…

Read More
October 3, 2025October 2, 2025

Cybersecurity Tools: Expectation vs Reality

When people imagine using cybersecurity tools, they picture themselves as a Hollywood hacker: green text flying, red alarms blaring, and a “system compromised” message after two keystrokes lol u know what i mean :)))). The fantasy goes like this:👉 Run fancy exploits like you’re in a spy movie. 🎬👉 Press one shiny button that magically…

Read More
October 2, 2025September 29, 2025

Why Most Cloud Pros Still Connect to Azure VMs the Wrong Way

After reviewing more Azure setups this quarter than I care to admit, I keep spotting the same tired anti-pattern: organizations still exposing VMs with public IP addresses just to RDP in. Let’s be blunt: it’s lazy, it’s risky, and in 2025, it’s downright embarrassing. The Old RDP Model — A Security Horror Show Traditional RDP…

Read More
September 12, 2025

Goodbye VPN !!!? Microsoft Global Secure Access and the End of the Tunnel

For decades, VPN was the sacred cow of remote access. The one-stop solution: drop a fat encrypted tunnel over the internet and boom — your remote users are “inside.” Problem solved, right? Except no. In 2025, VPN is basically giving every intern a master key to the building. They don’t just get into the room…

Read More
September 12, 2025

Microsoft Teams vs Malicious Links: New Warning System — Because Users Click Anything

Hi again )))) So, today two articles )))) its Friday! Microsoft noticed that people share sketchy links in Teams chats like they’re passing notes in high school. To combat this, they’re rolling out a feature to automatically warn users when a link looks fishy. Because yes, phishing attacks are still the thing. What’s the Deal?…

Read More
August 19, 2025August 19, 2025

Windows Hello PIN Disaster After Windows 11 24H2 Upgrade — When Security Becomes Your Hostage

Hey hey, if you like to test something new like update on prod that is exactly for you my seety geek :)))))))) If you thought the Windows 11 24H2 upgrade was just another boring patch Tuesday — think again. After the upgrade, users happily log in with their PIN… until the dreaded message appears: “PIN…

Read More
  • 1
  • 2
  • 3
  • Next

Categories

ActiveDirectory AI AIInfrastructure AIsecurity Azure AzureAI azuresecurity cloudarchitecture cloudnetworking CloudSecurity cloudstrategy Copilot copilotsecurity ctrlaltdelblog Cybersecurity DataGovernance DataProtection DataSecurity DevOps devsecops DigitalTransformation enterpriseai Entra entraID hybridcloud infosec Innovation ITInfrastructure Microsoft Microsoft365 Microsoft AI MicrosoftAzure Microsoft Product microsoftsecurity SecureAccess Security securitycopilot SoftwareUpdate sysadminlife TechNews updates Windows Windows10 Windows11 zeroTrust

Archives

  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • February 2025
  • October 2024
  • September 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
No comments to show.

Recent Comments

Recent Posts

  • CHAPTER 4/8 Next Steps to Secure and Accelerate Your AI Journey
  • CHAPTER 3/8 – Fireside Chat: Lessons in Building a Secure AI Foundation** (hard-edged, technical, irreverent, research-level)
  • CHAPTER 2/8 – Empower Your AI Journey with Microsoft Purview (R&D-grade, sharp, technical, irreverent)
  • Announcement: Rebuilding Trust for the AI Era: Inside the 2026 Secure AI Stack
  • When an RODC Goes Off the Grid: A Slow, Painful, Very British Death
©2025 IT-DRAFTS | Powered by WordPress and Superb Themes!